📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

browser redirected

Options
24

Comments

  • please explain what i have to upload thanks
  • closed
    closed Posts: 10,886 Forumite
    Delete the O4 - HKCU\..\Run: [dboledg] rundll32.exe "C:\Documents and Settings\tommy\Local Settings\Application Data\dboledg\dboledg.dll", DllInit

    entry in hijackthis, and reboot
    !!
    > . !!!! ----> .
  • i think this is what your your looking

    Authentium5.2.0.52010.02.22W32/Sinowal-based!Maximus
    F-Prot4.5.1.852010.02.22W32/Sinowal-based!Maximus
    Sophos4.50.02010.02.22Mal/Behav-365
    Symantec20091.2.0.412010.02.22Suspicious.Insight
  • closed
    closed Posts: 10,886 Forumite
    edited 23 February 2010 at 12:36AM
    see my previous post

    it looks like a relatively new one, which is why most AV's aren't detecting it
    !!
    > . !!!! ----> .
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    Download MALWAREBYTES (Make sure you click 'DOWNLOAD LATEST VERSION')
    http://www.filehippo.com/download_malwarebytes_anti_malware/
    Open malwarebytes and goto UPDATE and click 'check for updates'. After its updated goto SCANNER and click PERFORM FULL SCAN then click SCAN
    Post the COMPLETE log here AFTER youve deleted everything it finds
    :idea:
  • inver90
    inver90 Posts: 16 Forumite
    edited 23 February 2010 at 12:41AM
    have removed through hijack this and rebooted but the entry still remains at
    "C:\Documents and Settings\tommy\Local Settings\Application Data\dboledg\dboledg.dll", DllInit
  • closed
    closed Posts: 10,886 Forumite
    edited 23 February 2010 at 12:57AM
  • i have malwarebytes version 1.44
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    Can you please open malwarebytes, goto LOGS and post the WHOLE of the last log

    Please run COMBOFIX
    http://download.bleepingcomputer.com/sUBs/ComboFix.exe
    Shut down your anti virus
    Follow the simple instructions it gives
    Post the COMPLETE log it creates here (Split into sections if need be)

    If it comes up with a RENAMING error then RIGHT click the exe file and RENAME and call it QWERTY (Making the complete file name 'QWERTY.exe') Or SAVE as 'QWERTY' on download
    :idea:
  • Malwarebytes' Anti-Malware 1.44
    Database version: 3759
    Windows 5.1.2600 Service Pack 3
    Internet Explorer 7.0.5730.13
    18/02/2010 23:29:06
    mbam-log-2010-02-18 (23-29-06).txt
    Scan type: Quick Scan
    Objects scanned: 113312
    Time elapsed: 13 minute(s), 8 second(s)
    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 0
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 0
    Memory Processes Infected:
    (No malicious items detected)
    Memory Modules Infected:
    (No malicious items detected)
    Registry Keys Infected:
    (No malicious items detected)
    Registry Values Infected:
    (No malicious items detected)
    Registry Data Items Infected:
    (No malicious items detected)
    Folders Infected:
    (No malicious items detected)
    Files Infected:
    (No malicious items detected)
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 351K Banking & Borrowing
  • 253.1K Reduce Debt & Boost Income
  • 453.6K Spending & Discounts
  • 244.1K Work, Benefits & Business
  • 599K Mortgages, Homes & Bills
  • 177K Life & Family
  • 257.4K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.